Hacker Report 'High Risk' Flaws in Safari Browser
Over the last two weeks, security researchers have reported eight different zero-day vulnerabilities in Apple's Safari browser.
Details of these vulnerabilities, all rated "high risk," have been sold to Tippingpoint's Zero Day Initiative (ZDI), a program that purchases the rights to vulnerability information in exchange for exclusivity to broker fixes with affected vendors.
A high-risk rating is used to describe a vulnerability that could be exploited to launch remote code execution (drive-by download attacks).
All eight of the Safari vulnerabilities were reported by a researcher named "wushi" of team509. ZDI's Upcoming Advisories page provides a basic listing of the vulnerabilities alongside a running count of the number of days it was number of days they were reported to Apple.
The page also lists outstanding flaws in software products offered by Adobe, Mozilla Firefox, Novell, Hewlett-Packard, Oracle, Microsoft and IBM.
TippingPoint ZDI is the sponsor of the annual CanSecWest Pwn2Own hacker contest, where the Safari browser is usually a very big (weak) target.
Recommended Reads
Commenting on this Article is closed.
Today's Most Popular
- Yahoo Includes Private Key in Source File For Axis Chrome Extension
- Researchers Unveil New Way to Trust Certificates
- FBI Warns Top Firms Of Anonymous Protest Hacks on May 25
- DNSChanger Lingers: 330k Systems Still Infected, 77,000 In The U.S.
- Defense Contractor Northrop Grumman Hiring For Offensive Cyber Ops
Most Commented Stories
-
Forget 'Brogrammers,' Women Have The Edge In DEFCON Social Engineering Contest (10)
-
Defense Contractor Northrop Grumman Hiring For Offensive Cyber Ops (14)
-
Facebook Cancellation Malware Disguised As Adobe Update Making Rounds (3)
-
HULK DDoS Tool Smash Web Server, Server Fall Down (4)
-
DNSChanger Lingers: 330k Systems Still Infected, 77,000 In The U.S. (2)
Newsletter Sign-up
Take Our Poll
Listen to Latest Podcasts
-
-
You are missing some Flash content that should appear here! Perhaps your browser cannot display it, or maybe it did not initialize correctly.
-
You are missing some Flash content that should appear here! Perhaps your browser cannot display it, or maybe it did not initialize correctly.



